Call today! 1 866 3 NYMITY
Username: Password:
Home About Us

 

 

 

 

 

 

 

 

"As more organizations become aware that the AICPA/CICA Generally Accepted Privacy Principles exists we are confident that it will become a key tool for organizations to use to build, evaluate and validate their privacy regimes."

 

Bryan Walker Canadian Institute of Chartered Accountants (CICA)

 

 

Canadian Institute of Chartered Accountants (CICA)

 

Generally Accepted Privacy Principles

 

Canadian Institute of Chartered AccountantsIn early 2006, the CICA/AICPA announced the Generally Accepted Privacy Principles (GAPP).  Nymity has a long history working with the CICA and has extensive GAPP expertise as Nymity used the GAPP predecessor, the "Privacy Framework", in the creation of many of Nymity's solutions. 

 

Nymity Firsts

Nymity offers the:

 

 

The following are the ten Generally Accepted Privacy Principles:

  1. Management. The entity defines, documents, communicates, and assigns accountability for its privacy policies and procedures.

  2. Notice. The entity provides notice about its privacy policies and procedures and identifies the purposes for which personal information is collected, used, retained, and disclosed.

  3. Choice and Consent. The entity describes the choices available to the individual and obtains implicit or explicit consent with respect to the collection, use, and disclosure of personal information.

  4. Collection. The entity collects personal information only for the purposes identified in the notice.

  5. Use and Retention. The entity limits the use of personal information to the purposes identified in the notice and for which the individual has provided implicit or explicit consent. The entity retains personal information for only as long as necessary to fulfill the stated purposes.

  6. Access. The entity provides individuals with access to their personal information for review and update.

  7. Disclosure to Third Parties. The entity discloses personal information to third parties only for the purposes identified in the notice and with the implicit or explicit consent of the individual.

  8. Security for Privacy. The entity protects personal information against unauthorized access (both physical and logical).

  9. Quality. The entity maintains accurate, complete, and relevant personal information for the purposes identified in the notice.

  10. Monitoring and Enforcement. The entity monitors compliance with its privacy policies and procedures and has procedures to address privacy-related complaints and disputes.

For more information contact Nymity at 416 214 7838 or toll-free at 1 866 3 NYMITY or by email at info@nymity.com .

 

September 2007 Interview with Nicholas Cheung, Principal, Assurance Services Development

 

 

GAPP Workshop

 

Understanding GAPP

 

 


 

 

Privacy Training Based on GAPP

 

Privacy Training

 

 


 

 

Risk Mitigation Solutions Based on GAPP

 

PrivaWorks

 

Canadian Notice Index

 

 


 

 

CICA Members

 

Nymity solutions are designed to support CICA members delivering privacy auditing and consulting services.

 

  Nymity does not offer services that compete with CICA members services.

 

 

Contact Us | Privacy Policy | Terms of Use and Disclaimer © 2003 - 2008 NYMITY